THREAT OPS › Threat News
Threat Intelligence News
12300 reports from 110+ open cyber-threat-intelligence sources — APT activity, malware, vulnerabilities and campaigns, newest first.
- Go Get ‘Em: Updates to Volexity Golang Toolingvolexity · 2025-08-11
- Claude Code: Data Exfiltration with DNS (CVE-2025-55284)embracethered · 2025-08-11
- ZombAI Exploit with OpenHands: Prompt Injection To Remote Code Executionembracethered · 2025-08-10
- OpenHands and the Lethal Trifecta: How Prompt Injection Can Leak Access Tokensembracethered · 2025-08-09
- [NVD] CVE-2025-8088 (HIGH 8.8) — A path traversal vulnerability affecting the Windows version of WinRAR allows the attackers to execute arbitrary code by crafting malicious archive files. This vulnerability was exploited in the wild and was discovered by Anton Cherepanov, Peter Košinár, and Peter Strýček frnvd · 2025-08-08
- AI Kill Chain in Action: Devin AI Exposes Ports to the Internet with Prompt Injectionembracethered · 2025-08-08
- [NVD] CVE-2025-7195 (MEDIUM 6.4) — Early versions of Operator-SDK provided an insecure method to allow operator containers to run in environments that used a random UID. Operator-SDK before 0.15.2 provided a script, user_setup, which modifies the permissions of the /etc/passwd file to 664 during build time. Develonvd · 2025-08-07
- How Devin AI Can Leak Your Secrets via Multiple Meansembracethered · 2025-08-07
- [NVD] CVE-2025-8419 (MEDIUM 5.3) — A vulnerability was found in Keycloak-services. Special characters used during e-mail registration may perform SMTP Injection and unexpectedly send short unwanted e-mails. The email is limited to 64 characters (limited local part of the email), so the attack is limited to very shnvd · 2025-08-06
- I Spent $500 To Test Devin AI For Prompt Injection So That You Don't Have Toembracethered · 2025-08-06
- Flash Alert: From Bing Search to Ransomware: Bumblebee and AdaptixC2 Deliver Akiradfirreport · 2025-08-05
- Amp Code: Arbitrary Command Execution via Prompt Injection Fixedembracethered · 2025-08-05
- [NVD] CVE-2025-8539 (LOW 2.4) — A weakness has been identified in Portabilis i-Educar 2.10. This affects an unknown function of the file /intranet/public_distrito_cad.php. This manipulation of the argument nome causes cross site scripting. The attack is possible to be carried out remotely. The exploit has been nvd · 2025-08-05
- [NVD] CVE-2025-8538 (LOW 2.4) — A security flaw has been discovered in Portabilis i-Educar 2.10. The impacted element is an unknown function of the file /usuarios/tipos/novo. The manipulation of the argument name/description results in cross site scripting. The attack can be executed remotely. The exploit has bnvd · 2025-08-05
- [NVD] CVE-2025-20701 (HIGH 8.8) — In the Airoha Bluetooth audio SDK, there is a possible way to pair Bluetooth audio device without user consent. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.nvd · 2025-08-04
- Cursor IDE: Arbitrary Data Exfiltration Via Mermaid (CVE-2025-54132)embracethered · 2025-08-04
- Anthropic Filesystem MCP Server: Directory Access Bypass via Improper Path Validationembracethered · 2025-08-03
- Turning ChatGPT Codex Into A ZombAI Agentembracethered · 2025-08-02
- [NVD] CVE-2025-54790 (MEDIUM 6.5) — Files is a module for managing files inside spaces and user profiles. In versions 0.16.9 and below, Files does not have logic to prevent the exploitation of backend SQL queries without direct output, potentially allowing unauthorized data access. This is fixed in version 0.16.10.nvd · 2025-08-02
- [NVD] CVE-2025-54789 (MEDIUM 6.1) — Files is a module for managing files inside spaces and user profiles. In versions 0.16.9 and below, the File Move functionality does not contain logic that prevents injection of arbitrary JavaScript, which can lead to Browser JS code execution in the context of the user’s sessionnvd · 2025-08-02
- Exfiltrating Your ChatGPT Chat History and Memories With Prompt Injectionembracethered · 2025-08-01
- [NVD] CVE-2025-31277 (HIGH 8.8) — The issue was addressed with improved memory handling. This issue is fixed in Safari 18.6, iOS 18.6 and iPadOS 18.6, macOS Sequoia 15.6, tvOS 18.6, visionOS 2.6, watchOS 11.6. Processing maliciously crafted web content may lead to memory corruption.nvd · 2025-07-30
- [NVD] CVE-2025-8283 (LOW 3.7) — A vulnerability was found in the netavark package, a network stack for containers used with Podman. Due to dns.podman search domain being removed, netavark may return external servers if a valid A/AAAA record is sent as a response. When creating a container with a given name, thinvd · 2025-07-28
- [NVD] CVE-2025-8194 (HIGH 7.5) — There is a defect in the CPython “tarfile” module affecting the “TarFile” extraction and entry enumeration APIs. The tar implementation would process tar archives with negative offsets without error, resulting in an infinite loop and deadlock during the parsing of maliciously cranvd · 2025-07-28
- The Month of AI Bugs 2025embracethered · 2025-07-28
- [NVD] CVE-2025-5449 (MEDIUM 6.5) — A flaw was found in the SFTP server message decoding logic of libssh. The issue occurs due to an incorrect packet length check that allows an integer overflow when handling large payload sizes on 32-bit systems. This issue leads to failed memory allocation and causes the server pnvd · 2025-07-25
- [NVD] CVE-2025-8114 (MEDIUM 4.7) — A flaw was found in libssh, a library that implements the SSH protocol. When calculating the session ID during the key exchange (KEX) process, an allocation failure in cryptographic functions may lead to a NULL pointer dereference. This issue can cause the client or server to cranvd · 2025-07-24
- [NVD] CVE-2025-4878 (LOW 3.6) — A vulnerability was found in libssh, where an uninitialized variable exists under certain conditions in the privatekey_from_file() function. This flaw can be triggered if the file specified by the filename doesn't exist and may lead to possible signing failures or heap corruptionnvd · 2025-07-22
- [NVD] CVE-2025-38352 (HIGH 7.8) — In the Linux kernel, the following vulnerability has been resolved: posix-cpu-timers: fix race between handle_posix_cpu_timers() and posix_cpu_timer_del() If an exiting non-autoreaping task has already passed exit_notify() and calls handle_posix_cpu_timers() from IRQ, it can benvd · 2025-07-22
- Introducing OSS Rebuild: Open Source, Rebuilt to Lastgoogle_security · 2025-07-21
- [NVD] CVE-2025-53770 (CRITICAL 9.8) — Deserialization of untrusted data in on-premises Microsoft SharePoint Server allows an unauthorized attacker to execute code over a network. Microsoft is aware that an exploit for CVE-2025-53770 exists in the wild. Microsoft is preparing and fully testing a comprehensive update tnvd · 2025-07-20
- [NVD] CVE-2025-30758 (MEDIUM 5.3) — Vulnerability in the Siebel CRM End User product of Oracle Siebel CRM (component: User Interface). Supported versions that are affected are 25.0-25.5. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Siebel CRM End User.nvd · 2025-07-15
- [NVD] CVE-2025-34115 — An authenticated command injection vulnerability exists in OP5 Monitor through version 7.1.9 via the 'cmd_str' parameter in the command_test.php endpoint. A user with access to the web interface can exploit the 'Test this command' feature to execute arbitrary shell commands as thnvd · 2025-07-15
- [NVD] CVE-2025-7519 (MEDIUM 6.7) — A flaw was found in polkit. When processing an XML policy with 32 or more nested elements in depth, an out-of-bounds write can be triggered. This issue can lead to a crash or other unexpected behavior, and arbitrary code execution is not discarded. To exploit this flaw, a high-prnvd · 2025-07-14
- KongTuke FileFix Leads to New Interlock RAT Variantdfirreport · 2025-07-14
- [Breach] NIUS — 6,090 accounts exposedhibp_breaches · 2025-07-13
- [NVD] CVE-2025-5992 — When passing values outside of the expected range to QColorTransferGenericFunction it can cause a denial of service, for example, this can happen when passing a specifically crafted ICC profile to QColorSpace::fromICCProfile. This issue affects Qt from 6.6.0 through 6.8.3, from nvd · 2025-07-11
- [NVD] CVE-2025-7365 (HIGH 7.1) — A flaw was found in Keycloak. When an authenticated attacker attempts to merge accounts with another existing account during an identity provider (IdP) login, the attacker will subsequently be prompted to "review profile" information. This vulnerability allows the attacker to modnvd · 2025-07-10
- [NVD] CVE-2025-7425 (HIGH 7.8) — A flaw was found in libxslt where the attribute type, atype, flags are modified in a way that corrupts internal memory management. When XSLT functions, such as the key() process, result in tree fragments, this corruption prevents the proper cleanup of ID attributes. As a result, nvd · 2025-07-10
- [NVD] CVE-2025-7424 (HIGH 7.5) — A flaw was found in the libxslt library. The same memory field, psvi, is used for both stylesheet and input data, which can lead to type confusion during XML transformations. This vulnerability allows an attacker to crash the application or corrupt memory. In some cases, it may lnvd · 2025-07-10
- [NVD] CVE-2025-32990 (MEDIUM 6.5) — A heap-buffer-overflow (off-by-one) flaw was found in the GnuTLS software in the template parsing logic within the certtool utility. When it reads certain settings from a template file, it allows an attacker to cause an out-of-bounds (OOB) NULL pointer write, resulting in memory nvd · 2025-07-10
- [NVD] CVE-2025-38299 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: ASoC: mediatek: mt8195: Set ETDM1/2 IN/OUT to COMP_DUMMY() ETDM2_IN_BE and ETDM1_OUT_BE are defined as COMP_EMPTY(), in the case the codec dai_name will be null. Avoid a crash if the device tree is not assigninvd · 2025-07-10
- [NVD] CVE-2025-38266 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: pinctrl: mediatek: eint: Fix invalid pointer dereference for v1 platforms Commit 3ef9f710efcb ("pinctrl: mediatek: Add EINT support for multiple addresses") introduced an access to the 'soc' field of struct mtknvd · 2025-07-10
- [NVD] CVE-2025-32989 (MEDIUM 5.3) — A heap-buffer-overread vulnerability was found in GnuTLS in how it handles the Certificate Transparency (CT) Signed Certificate Timestamp (SCT) extension during X.509 certificate parsing. This flaw allows a malicious user to create a certificate containing a malformed SCT extensinvd · 2025-07-10
- [NVD] CVE-2025-32988 (MEDIUM 6.5) — A flaw was found in GnuTLS. A double-free vulnerability exists in GnuTLS due to incorrect ownership handling in the export logic of Subject Alternative Name (SAN) entries containing an otherName. If the type-id OID is invalid or malformed, GnuTLS will call asn1_delete_structure()nvd · 2025-07-10
- Stop the Leak: Scanning Containers for Exposed Secretsbinarly · 2025-07-10
- Advancing Protection in Chrome on Androidgoogle_security · 2025-07-08
- [NVD] CVE-2025-38237 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: media: platform: exynos4-is: Add hardware sync wait to fimc_is_hw_change_mode() In fimc_is_hw_change_mode(), the function changes camera modes without waiting for hardware completion, risking corrupted data or nvd · 2025-07-08
- [NVD] CVE-2025-5987 (HIGH 8.1) — A flaw was found in libssh when using the ChaCha20 cipher with the OpenSSL library. If an attacker manages to exhaust the heap space, this error is not detected and may lead to libssh using a partially initialized cipher context. This occurs because the OpenSSL error code returnenvd · 2025-07-07
- [NVD] CVE-2025-38206 (HIGH 7.8) — In the Linux kernel, the following vulnerability has been resolved: exfat: fix double free in delayed_free The double free could happen in the following path. exfat_create_upcase_table() exfat_create_upcase_table() : return error exfat_free_upcase_table() : frenvd · 2025-07-04
- [NVD] CVE-2025-38205 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Avoid divide by zero by initializing dummy pitch to 1 [Why] If the dummy values in `populate_dummy_dml_surface_cfg()` aren't updated then they can lead to a divide by zero in downstream callersnvd · 2025-07-04
- [NVD] CVE-2025-38203 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: jfs: Fix null-ptr-deref in jfs_ioc_trim [ Syzkaller Report ] Oops: general protection fault, probably for non-canonical address 0xdffffc0000000087: 0000 [#1 KASAN: null-ptr-deref in range [0x0000000000000438-0nvd · 2025-07-04
- [NVD] CVE-2025-5351 (MEDIUM 6.5) — A flaw was found in the key export functionality of libssh. The issue occurs in the internal function responsible for converting cryptographic keys into serialized formats. During error handling, a memory structure is freed but not cleared, leading to a potential double free issunvd · 2025-07-04
- [NVD] CVE-2025-5372 (MEDIUM 5.0) — A flaw was found in libssh versions built with OpenSSL versions older than 3.0, specifically in the ssh_kdf() function responsible for key derivation. Due to inconsistent interpretation of return values where OpenSSL uses 0 to indicate failure and libssh uses 0 for success—the funvd · 2025-07-04
- [NVD] CVE-2024-5647 (MEDIUM 6.4) — Multiple plugins for WordPress are vulnerable to Stored Cross-Site Scripting via the plugin's bundled Magnific Popups library (version 1.1.0) in various versions due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for autnvd · 2025-07-03
- [NVD] CVE-2025-38117 (HIGH 7.8) — In the Linux kernel, the following vulnerability has been resolved: Bluetooth: MGMT: Protect mgmt_pending list with its own lock This uses a mutex to protect from concurrent access of mgmt_pending list which can cause crashes like: =============================================nvd · 2025-07-03
- [NVD] CVE-2025-38097 (HIGH 7.8) — In the Linux kernel, the following vulnerability has been resolved: espintcp: remove encap socket caching to avoid reference leak The current scheme for caching the encap socket can lead to reference leaks when we try to delete the netns. The reference chain is: xfrm_state -> nvd · 2025-07-03
- Hide Your RDP: Password Spray Leads to RansomHub Deploymentdfirreport · 2025-06-30
- [NVD] CVE-2025-40910 (MEDIUM 6.5) — Net::IP::LPM version 1.10 for Perl does not properly consider leading zero characters in IP CIDR address strings, which could allow attackers to bypass access control that is based on IP addresses. Leading zeros are used to indicate octal numbers, which can confuse users who arenvd · 2025-06-27
- [NVD] CVE-2025-5459 (HIGH 8.8) — A user with specific node group editing permissions and a specially crafted class parameter could be used to execute commands as root on the primary host. It affects Puppet Enterprise versions 2018.1.8 through 2023.8.3 and 2025.3 and has been resolved in versions 2023.8.4 and 202nvd · 2025-06-26
- [NVD] CVE-2025-4334 (CRITICAL 9.8) — The Simple User Registration plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 6.3. This is due to insufficient restrictions on user meta values that can be supplied during registration. This makes it possible for unauthenticated attnvd · 2025-06-26
- Security Advisory: Anthropic's Slack MCP Server Vulnerable to Data Exfiltrationembracethered · 2025-06-24
- [NVD] CVE-2025-5318 (HIGH 8.1) — A flaw was found in the libssh library in versions less than 0.11.2. An out-of-bounds read can be triggered in the sftp_handle function due to an incorrect comparison check that permits the function to access memory beyond the valid handle list and to return an invalid pointer, wnvd · 2025-06-24
- [NVD] CVE-2025-24291 (MEDIUM 6.1) — The Versa Director SD-WAN orchestration platform provides functionality to upload various types of files. However, the Java code handling file uploads contains an argument injection vulnerability. By appending additional arguments to the file name, an attacker can bypass MIME typnvd · 2025-06-19
- [NVD] CVE-2025-24288 (CRITICAL 9.8) — The Versa Director software exposes a number of services by default and allow attackers an easy foothold due to default credentials and multiple accounts (most with sudo access) that utilize the same default credentials. By default, Versa director exposes ssh and postgres to the nvd · 2025-06-19
- [NVD] CVE-2025-23173 (HIGH 7.5) — The Versa Director SD-WAN orchestration platform provides direct web-based access to uCPE virtual machines through the Director GUI. By default, the websockify service is exposed on port 6080 and accessible from the internet. This exposure introduces significant risk, as websockinvd · 2025-06-19
- [NVD] CVE-2025-23172 (HIGH 7.2) — The Versa Director SD-WAN orchestration platform includes a Webhook feature for sending notifications to external HTTP endpoints. However, the "Add Webhook" and "Test Webhook" functionalities can be abused by an authenticated user to send crafted HTTP requests to localhost. This nvd · 2025-06-19
- [NVD] CVE-2025-23171 (HIGH 7.2) — The Versa Director SD-WAN orchestration platform provides an option to upload various types of files. The Versa Director does not correctly limit file upload permissions. The UI appears not to allow file uploads but uploads still succeed. In addition, the Versa Director disclosesnvd · 2025-06-19
- [NVD] CVE-2025-23170 (MEDIUM 6.7) — The Versa Director SD-WAN orchestration platform includes functionality to initiate SSH sessions to remote CPEs and the Director shell via Shell-In-A-Box. The underlying Python script, shell-connect.py, is vulnerable to command injection through the user argument. This allows an nvd · 2025-06-19
- [NVD] CVE-2025-23169 (MEDIUM 6.1) — The Versa Director SD-WAN orchestration platform allows customization of the user interface, including the header, footer, and logo. However, the input provided for these customizations is not properly validated or sanitized, allowing a malicious user to inject and store cross-sinvd · 2025-06-19
- [NVD] CVE-2022-50223 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: LoongArch: cpuinfo: Fix a warning for CONFIG_CPUMASK_OFFSTACK When CONFIG_CPUMASK_OFFSTACK and CONFIG_DEBUG_PER_CPU_MAPS is selected, cpu_max_bits_warn() generates a runtime warning similar as below while we shnvd · 2025-06-18
- [NVD] CVE-2022-50206 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: arm64: fix oops in concurrently setting insn_emulation sysctls emulation_proc_handler() changes table->data for proc_dointvec_minmax and can generate the following Oops if called concurrently with itself: | Unvd · 2025-06-18
- [NVD] CVE-2022-50151 (HIGH 7.8) — In the Linux kernel, the following vulnerability has been resolved: usb: cdns3: fix random warning message when driver load Warning log: [ 4.141392] Unexpected gfp: 0x4 (GFP_DMA32). Fixing up to gfp: 0xa20 (GFP_ATOMIC). Fix your code! [ 4.150340] CPU: 1 PID: 175 Comm: 1-0nvd · 2025-06-18
- [NVD] CVE-2022-50073 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: net: tap: NULL pointer derefence in dev_parse_header_protocol when skb->dev is null Fixes a NULL pointer derefence bug triggered from tap driver. When tap_get_user calls virtio_net_hdr_to_skb the skb->dev is nunvd · 2025-06-18
- [NVD] CVE-2022-50034 (HIGH 7.8) — In the Linux kernel, the following vulnerability has been resolved: usb: cdns3 fix use-after-free at workaround 2 BUG: KFENCE: use-after-free read in __list_del_entry_valid+0x10/0xac cdns3_wa2_remove_old_request() { ... kfree(priv_req->request.buf); cdns3_gadget_ep_free_reqnvd · 2025-06-18
- [NVD] CVE-2022-50016 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: ASoC: SOF: Intel: cnl: Do not process IPC reply before firmware boot It is not yet clear, but it is possible to create a firmware so broken that it will send a reply message before a FW_READY message (it is notnvd · 2025-06-18
- [NVD] CVE-2022-50015 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: ASoC: SOF: Intel: hda-ipc: Do not process IPC reply before firmware boot It is not yet clear, but it is possible to create a firmware so broken that it will send a reply message before a FW_READY message (it isnvd · 2025-06-18
- [NVD] CVE-2022-50013 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to avoid use f2fs_bug_on() in f2fs_new_node_page() As Dipanjan Das <mail.dipanjan.das@gmail.com> reported, syzkaller found a f2fs bug as below: RIP: 0010:f2fs_new_node_page+0x19ac/0x1fc0 fs/f2fs/nodenvd · 2025-06-18
- [NVD] CVE-2022-50009 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: f2fs: fix null-ptr-deref in f2fs_get_dnode_of_data There is issue as follows when test f2fs atomic write: F2FS-fs (loop0): Can't find valid F2FS filesystem in 2th superblock F2FS-fs (loop0): invalid crc_offset:nvd · 2025-06-18
- [NVD] CVE-2022-49983 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: udmabuf: Set the DMA mask for the udmabuf device (v2) If the DMA mask is not set explicitly, the following warning occurs when the userspace tries to access the dma-buf via the CPU as reported by syzbot here: nvd · 2025-06-18
- [NVD] CVE-2022-49974 (HIGH 8.8) — In the Linux kernel, the following vulnerability has been resolved: HID: nintendo: fix rumble worker null pointer deref We can dereference a null pointer trying to queue work to a destroyed workqueue. If the device is disconnected, nintendo_hid_remove is called, in which the rnvd · 2025-06-18
- [NVD] CVE-2022-49969 (HIGH 7.8) — In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: clear optc underflow before turn off odm clock [Why] After ODM clock off, optc underflow bit will be kept there always and clear not work. We need to clear that before clock off. [How] Clear tnvd · 2025-06-18
- [NVD] CVE-2025-4754 — Insufficient Session Expiration vulnerability in team-alembic ash_authentication_phoenix allows a session token captured before sign-out to remain usable afterwards. The default sign_out/2 that AshAuthentication.Phoenix.Controller injects into an application's auth controller onnvd · 2025-06-17
- [NVD] CVE-2025-6170 (LOW 2.5) — A flaw was found in the interactive shell of the xmllint command-line tool, used for parsing XML files. When a user inputs an overly long command, the program does not check the input size properly, which can cause it to crash. This issue might allow attackers to run harmful codenvd · 2025-06-16
- [NVD] CVE-2025-49796 (CRITICAL 9.1) — A vulnerability was found in libxml2. Processing certain sch:name elements from the input XML file can trigger a memory corruption issue. This flaw allows an attacker to craft a malicious XML input file that can lead libxml to crash, resulting in a denial of service or other possnvd · 2025-06-16
- [NVD] CVE-2025-49794 (CRITICAL 9.1) — A use-after-free vulnerability was found in libxml2. This issue occurs when parsing XPath elements under certain circumstances when the XML schematron has the <sch:name path="..."/> schema elements. This flaw allows a malicious actor to craft a malicious XML document used as inpunvd · 2025-06-16
- Mitigating prompt injection attacks with a layered defense strategygoogle_security · 2025-06-13
- [NVD] CVE-2025-6021 (HIGH 7.5) — A flaw was found in libxml2's xmlBuildQName function, where integer overflows in buffer size calculations can lead to a stack-based buffer overflow. This issue can result in memory corruption or a denial of service when processing crafted input.nvd · 2025-06-12
- [NVD] CVE-2025-5991 — There is a "Use After Free" vulnerability in Qt's QHttp2ProtocolHandler in the QtNetwork module. This only affects HTTP/2 handling, HTTP handling is not affected by this at all. This happens due to a race condition between how QHttp2Stream uploads the body of a POST request and nvd · 2025-06-11
- [NVD] CVE-2025-2884 (MEDIUM 6.6) — TCG TPM2.0 Reference implementation's CryptHmacSign helper function is vulnerable to Out-of-Bounds read due to the lack of validation the signature scheme with the signature key's algorithm. See Errata Revision 1.83 and advisory TCGVRT0009 for TCG standard TPM2.0nvd · 2025-06-10
- [NVD] CVE-2025-31104 (HIGH 7.2) — A improper neutralization of special elements used in an os command ('os command injection') vulnerability in Fortinet FortiADC 7.6.0 through 7.6.1, FortiADC 7.4.0 through 7.4.6, FortiADC 7.2.0 through 7.2.7, FortiADC 7.1.0 through 7.1.4, FortiADC 7.0 all versions, FortiADC 6.2 anvd · 2025-06-10
- [NVD] CVE-2025-5918 (LOW 3.9) — A vulnerability has been identified in the libarchive library. This flaw can be triggered when file streams are piped into bsdtar, potentially allowing for reading past the end of the file. This out-of-bounds read can lead to unintended consequences, including unpredictable progrnvd · 2025-06-09
- [NVD] CVE-2025-5917 (LOW 2.8) — A vulnerability has been identified in the libarchive library. This flaw involves an 'off-by-one' miscalculation when handling prefixes and suffixes for file names. This can lead to a 1-byte write overflow. While seemingly small, such an overflow can corrupt adjacent memory, leadnvd · 2025-06-09
- [NVD] CVE-2025-5916 (LOW 3.9) — A vulnerability has been identified in the libarchive library. This flaw involves an integer overflow that can be triggered when processing a Web Archive (WARC) file that claims to have more than INT64_MAX - 4 content bytes. An attacker could craft a malicious WARC archive to indnvd · 2025-06-09
- [NVD] CVE-2025-5915 (MEDIUM 6.6) — A vulnerability has been identified in the libarchive library. This flaw can lead to a heap buffer over-read due to the size of a filter block potentially exceeding the Lempel-Ziv-Storer-Schieber (LZSS) window. This means the library may attempt to read beyond the allocated memornvd · 2025-06-09
- [NVD] CVE-2025-5914 (HIGH 7.8) — A vulnerability has been identified in the libarchive library, specifically within the archive_read_format_rar_seek_data() function. This flaw involves an integer overflow that can ultimately lead to a double-free condition. Exploiting a double-free vulnerability can result in menvd · 2025-06-09
- Hosting COM Servers with an MCP Serverembracethered · 2025-06-09
- YARA-X 1.0.0: The Stable Release and Its Advantagesvirustotal_blog · 2025-06-04
- What 17,845 GitHub Repos Taught Us About Malicious MCP Serversvirustotal_blog · 2025-06-04
- [NVD] CVE-2025-4517 (CRITICAL 9.4) — Allows arbitrary filesystem writes outside the extraction directory during extraction with filter="data". You are affected by this vulnerability if using the tarfile module to extract untrusted tar archives using TarFile.extractall() or TarFile.extract() using the filter= paramnvd · 2025-06-03